- Empowers investigators to conduct investigations with powerful processing
speeds, advanced index searching, comprehensive language support and
optimized performance.
- Provides customizable templates to help examiners create compelling, easy to
read, professional reports that can be shared for every case.
- Offers extensibility through EnScripts, which are automated code commands
that streamline and automate tasks and extend the capabilities of EnCase
Forensic to help the examiners complete investigations more efficiently.
- Delivers automated investigation workflows so examiners can easily navigate
through EnCase Forensic to enhance how they uncover evidence.
- Provides encryption support for Microsoft® Windows® 10 Bitlocker XTS-AES,
Dell® Data Protection 8.17 and Symantec™ PGP v10.3; investigators can
acquire encrypted evidence without worry about data corruption, damage
or unnecessary delays.
- Supports APFS, the file system used in helping investigators conduct
targeted data collections from APFS and send the output as an EnCase logical
evidence file.
- Examines Volume Shadow Snapshot (VSS) backups, also known as volume shadow
copies, generated by Microsoft Windows, allowing investigators to recover
deleted or modified files, as well as full volumes and learn what
may have taken place on a system before the investigation.
- Bypass Acquires machines equipped with Apple T2 Security chips without
additional hardware, drive partitions, or hassle. And if the user is logged
in, no credentials are required.
|